AI-Agent-Risk-Evaluation Security Audit Report
AI-Agent-Risk-Evaluation is an AI agent skill, created by ZhongdaoChen and published at ZhongdaoChen/AI-Agent-Risk-Evaluation. ClawSecure audited AI-Agent-Risk-Evaluation across 35 files through the 3-Layer Audit Protocol covering all ten OWASP ASI Top 10 categories, assigning a security score of 0/100 (High Risk). The 21 findings concentrate in Code Injection, Malicious Code and Permissions Manifest, including Attempts to access sensitive file: .ssh/ and Attempts to access sensitive file: .ssh/. 19 were rated high or critical severity.
Is AI-Agent-Risk-Evaluation safe?
ClawSecure audited AI-Agent-Risk-Evaluation and assigned a security score of 0/100 (High Risk), identifying 21 findings across Code Injection and Malicious Code. Review the findings below before installing.
What did ClawSecure find in AI-Agent-Risk-Evaluation?
ClawSecure identified 21 findings in AI-Agent-Risk-Evaluation, concentrated in Code Injection, Malicious Code and Permissions Manifest. 19 were rated high or critical severity. The most severe include Attempts to access sensitive file: .ssh/ and Attempts to access sensitive file: .ssh/.
How was AI-Agent-Risk-Evaluation audited?
ClawSecure ran AI-Agent-Risk-Evaluation through its 3-Layer Audit Protocol with full OWASP ASI Top 10 coverage, scanning 35 files from ZhongdaoChen/AI-Agent-Risk-Evaluation.
What does a score of 0 mean?
ClawSecure assigned AI-Agent-Risk-Evaluation a security score of 0/100, placing it in the High Risk range. This is driven by 21 findings led by Code Injection that should be addressed before use. ClawSecure derives this score with a weighted deduction model (critical -20, high -10, medium -5, low -2 from a base of 100).
Audit Findings for AI-Agent-Risk-Evaluation
ClawSecure detected 21 security findings in AI-Agent-Risk-Evaluation, spanning Code Injection, Malicious Code, Permissions Manifest and ReDoS.
- high · Attempts to access sensitive file: .ssh/. Malicious Code finding detected in
skill_analyzer.py. - high · Attempts to access sensitive file: .ssh/. Malicious Code finding detected in
test_skill_analyzer.py. - high · Potentially dangerous code pattern detected: eval\(. Code Injection finding detected in
MODULES.md. - high · Potentially dangerous code pattern detected: exec\(. Code Injection finding detected in
MODULES.md. - high · Potentially dangerous code pattern detected: eval\(. Code Injection finding detected in
ai_safety_analyzer.py. - high · Potentially dangerous code pattern detected: exec\(. Code Injection finding detected in
ai_safety_analyzer.py. - high · Potentially dangerous code pattern detected: base64.*decode. Code Injection finding detected in
ai_safety_analyzer.py. - high · Potentially dangerous code pattern detected: base64.*decode. Code Injection finding detected in
code_analyzer.py. - high · Potentially dangerous code pattern detected: base64.*decode. Code Injection finding detected in
deps_analyzer.py. - high · Potentially dangerous code pattern detected: base64.*decode. Code Injection finding detected in
depsdev_analyzer.py. - high · Potentially dangerous code pattern detected: base64.*decode. Code Injection finding detected in
privacy_analyzer.py. - high · Potentially dangerous code pattern detected: base64.*decode. Code Injection finding detected in
runtime_analyzer.py.
Showing the 12 highest-severity of 21 findings. The full interactive list appears below.
3-Layer Audit Protocol
Security Recommendations for AI-Agent-Risk-Evaluation
Eliminate dynamic code execution
Audit external network connections
Add a config.json permissions manifest
Related Security Research
Why Generic Scanners Fail at AI Agent Security→Beyond Static Scans: Why ClawSecure Verifies Agentic Intent→Related AI Agent Security Audits
Scanned on July 22, 2026. AI-Agent-Risk-Evaluation is one of thousands of agents audited by ClawSecure from the community-curated awesome-openclaw-skills list and the openclaw/skills repository.